Detecting DDoS attacks based on improved D-S evidence theory
HU Chun-a · Jisuanji gongcheng yu sheji · 2014
Based on the difficulty,low reliability,and huge computation of detecting DDoS attack,an adding weight DempsterShafer evidence theory is put forward on detecting DDoS attack.The Snort intrusion detection system is deployed to monitor the entire network,and then the alert information is processed by improved Dempster-Shafer evidence theory,by adding the weight of the evidence,to improve the credibility of the evidence,thus filters the false alert information,reduces the fault alerts.Experiments show that,are detected quickly and accarately these attacks;it is greatly improved than the previous.